URLhaus Database

You are currently viewing the URLhaus database entry for https://theheadsoccerunblocked.com/atse/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2640177
URL: https://theheadsoccerunblocked.com/atse/?1
URL Status:Offline
Host: theheadsoccerunblocked.com
Date added:2023-05-24 14:13:16 UTC
Last online:2023-05-26 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-24 14:15:32 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 8 hours, 6 minutes Poor (down since 2023-05-26 22:21:41 UTC)
Tags:BB29 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-26810.zipzip 69d0ab19822d77afe1a108f94965c982c38303dce2dd7ed16845a6a5204a8aa7Virustotal results 25.00% 
2023-05-26170.zipzip 56fd8ea776fe76d4a2c467204d17443d8ee1392d6ace10318efb849eac0e91fcVirustotal results 20.97% 
2023-05-26Hamble.jsjs f4adb4c22f6dc31e805b8defae25cbad1a95b3e0fcee140222f6bd609728eb4en/a Quakbot
2023-05-26277.zipzip 099d69e1b305ea25411fe943a57519393b0b1874622d96e2fe59784278ac64b6Virustotal results 19.35% 
2023-05-26776.zipzip 137e41f1fab5267b375377bca86c135bb64b777a6f86e0419241b846427947d6Virustotal results 22.58% 
2023-05-26510.zipzip 76da5262cd417c6dbee459b921ea10cd1cbaefafc4a594f397c8da1928905e22Virustotal results 25.00% 
2023-05-26539.zipzip 742c7beb36448b234d4cf73e6883ec63a23b125c86ac10490c0ed9f71a08f180Virustotal results 23.73% 
2023-05-26535.zipzip 7a09e3f51f761bfa06a94f4a2faedb73ac6e4348f1d12848d093462da71994bcVirustotal results 17.74% 
2023-05-267.zipzip c6003fd300efbf0892ddd2c9c7317abb8b06f7a17a0358c32b8787388a2f95cfn/a 
2023-05-26580.zipzip 1456d8bed924c45ce10d4fbf252b6811dce40f289dc33ead1f11ba7f921e748eVirustotal results 22.58% 
2023-05-26638.zipzip 9499e33d1be574c7fdefe49b372bbbdb6da1fb9003b56749b527665bd52df0b0Virustotal results 20.97% 
2023-05-26195.zipzip 4c6c5acc134b367cb8cb6082aa6058a41b46e24fb6a706f8d65cec8abace2634Virustotal results 21.31% 
2023-05-25665.zipzip d313e136be0933e75e638d422a219bbd8bb8d4ee5ddb8ca11ab41f4ad121ceb5Virustotal results 22.58% 
2023-05-25503.zipzip 11dbb29d589bd257913683ab167143246402e85430e126892895e258ff0c17bcVirustotal results 22.58% 
2023-05-25747.zipzip dde88b70c674d884cadee4043c4aecd9fcd59ae6c543775bbd1cc8a7681c7daeVirustotal results 20.97% 
2023-05-25693.zipzip 15e6128823d40a3be2ebc82623aa904d411b125d8a471dd6c50ac606f6d327fcVirustotal results 17.39% 
2023-05-2529.zipzip 6a38875cdcafcbe02b64457fdb5a4fb39ca986260aee0b7b03a9bd1b8ccedb66Virustotal results 19.15% 
2023-05-25202.zipzip 660dadbd8319b37eb58312490551a381661295ceea133e088a915148658b5813n/a 
2023-05-25Sharklet.jsjs 1d7a9e78d9115f58c6d983557bbde975b4184c405edf4594d45e4720e523639dn/a 
2023-05-25Nonoptically.jsjs 74132db702f635a99c629e4d77b91702f67bc368adfdd7893ef7db820301a577n/a 
2023-05-25ineffectual.jsjs e9d02741ac2296ffeb4f50709b378ec1547eb2fcf064bcb19d1d1c5a81155258n/a 
2023-05-25toadroot.jsjs f82728ceca9a4fc876488479869f36a9f5392dc0f7ea1c6f43a02fd995411affn/a 
2023-05-25celtomaniacXero.jsjs 0a1b596daf945c28359134f95635d1309ccc4496032155e14aa3d80ce2d989b7n/a 
2023-05-25Outwriting.jsjs b2354a008c4c331801098ab90658a1b6e2ad2f5dcbb0b79b24ceca88387ecef8n/a 
2023-05-25Unprepare.jsjs eedee623bee406617a7e78262a051c77641c06ae17fe2d05860960a51191be2an/a 
2023-05-25unsympathizabil.jsjs 354125477147e4a79f086b67ff12440fa069631dfb32eb66f1ee24e9aea76799n/a 
2023-05-25AspirataeBrains.jsjs 48791dbf50217880759e9f06214506ff15702a48dde363b89b3d5336fd09b7fan/a 
2023-05-24piggyback.jsjs 7ffaefa25433b25c38c2c038c300f1f583d38693cca6657f9a6506b3c486e42bn/a 
2023-05-24freudism.jsjs f58d5907ea6ee4918795df41c79dbd5ff16a5663e633bc57c535eece1e053c84n/a 
2023-05-24unconditionalUn.jsjs 7075e8128ee1b4d95274877ffda7630cbb32db6b878da6ce22eb362652af1aa7n/a 
2023-05-24doc_E754.zipzip 864fa2c07a57d14b67cbc7d9dbaca51319bafefd4375ca4626b0af85396c1b9fn/a Quakbot